cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1440
Views
5
Helpful
4
Replies

Does Firewall supports layer 2 switching ?

kunalchopra1992
Level 1
Level 1

Hi,

I just found out ASA5506 does not have the capability of layer 2 switching. I know the ASA5505 does. Which ASA appliances do have layer 2 switching? Does ASA5508 or ASA5516?

Thanks,
Kunal chopra

1 Accepted Solution

Accepted Solutions

Aditya Ganjoo
Cisco Employee
Cisco Employee

Hi Kunal,

The ASA 5506-X do not support switch port command as what you were getting in ASA 5505. The 5506 acts just like a router, where you can apply 802.1q tagging to place sub interfaces in different VLANs.

You can create the sub-interface on the ASA 5506 and further can configure those sub-interface under different VLANs. Also please refer the below document in order to configure the transparent mode on the device.

http://www.cisco.com/c/en/us/td/docs/security/asa/asa93/configuration/general/asa-general-cli/interface-transparent.html#pgfId-1705756

Also we can configure ASA in the transparent mode and it can act as a bump in wire.

Check this link for the model info:

http://www.cisco.com/c/en/us/td/docs/security/asa/asa90/configuration/guide/asa_90_cli_config/interface_complete_transparent.html

Regards,

Aditya

Please rate helpful posts and mark correct answers.

View solution in original post

4 Replies 4

Aditya Ganjoo
Cisco Employee
Cisco Employee

Hi Kunal,

The ASA 5506-X do not support switch port command as what you were getting in ASA 5505. The 5506 acts just like a router, where you can apply 802.1q tagging to place sub interfaces in different VLANs.

You can create the sub-interface on the ASA 5506 and further can configure those sub-interface under different VLANs. Also please refer the below document in order to configure the transparent mode on the device.

http://www.cisco.com/c/en/us/td/docs/security/asa/asa93/configuration/general/asa-general-cli/interface-transparent.html#pgfId-1705756

Also we can configure ASA in the transparent mode and it can act as a bump in wire.

Check this link for the model info:

http://www.cisco.com/c/en/us/td/docs/security/asa/asa90/configuration/guide/asa_90_cli_config/interface_complete_transparent.html

Regards,

Aditya

Please rate helpful posts and mark correct answers.

Hi Aditya,

Thanks for the detailed info.

Please confirm one more thing whether no ASA model after 5505 has switch ports in them , right ?

Hi Kunal,

No ASA has the switchports available after ASA 5505.

Regards,

Aditya

Please rate helpful posts and mark correct answers.

Thank you so much Aditya !

Review Cisco Networking for a $25 gift card